Penetration testers and CTF participants can use this community-driven repository of web application security payloads and bypass techniques. It includes vulnerability descriptions, exploitation methods, Burp Intruder files, and supplementary learning resources.
開発ツール自動化Testing & debugging
Web of Flawsは、開発者、セキュリティエンジニア、AIコーディングエージェント向けに設計された、Webセキュリティ脆弱性と安全なコード代替案の構造化されたMarkdownファーストのカタログです。
開発ツール人工知能Testing & debugging
Zentraは、開発者向けのAI搭載CLIセキュリティスキャナで、SAST、DAST、サプライチェーン、API、IaC分析をLLMオーケストレーション、CI統合、認可ペンテストモードと組み合わせます。
開発ツール人工知能Testing & debugging
OWASP Web Security Testing Guide(WSTG)は、Webアプリケーションとサービスのセキュリティテストのためのオープンソースのリファレンスです。構造化されたシナリオ、バージョン付き識別子、安定したドキュメント、コミュニティ貢献を備えています。
セルフホスト開発ツールMonitoring & security